CompTIA Project+ (PK0-005)Basics of IT and GovernanceEasy
A project manager is overseeing the deployment of a new web application that will handle sensitive customer payment information. During the planning phase, the team discusses how to ensure that all data transmitted between the client's browser and the server is encrypted and protected from eavesdropping. Which of the following protocols is MOST appropriate for this requirement?
- AHTTP
- BFTP
- CSMTP
- DHTTPS
Show answer & explanationAnswer & explanation
Correct answer: D. HTTPS
HTTPS is the most appropriate protocol for securing web traffic, especially when sensitive data like payment information is involved. It encrypts the communication between the client and the server, protecting it from interception and tampering. This ensures confidentiality and integrity of the data.
Why the other options are wrong
- A. HTTP (Hypertext Transfer Protocol) is the fundamental protocol for the web but does not provide encryption, making it unsuitable for sensitive data.
- B. FTP (File Transfer Protocol) is primarily used for transferring files and does not inherently provide encryption for data in transit.
- C. SMTP (Simple Mail Transfer Protocol) is used for sending email and is not relevant for securing web application traffic.
HTTPS
HTTPS (Hypertext Transfer Protocol Secure) is an extension of HTTP that provides secure communication over a computer network. It is widely used on the Internet.
- Encrypts data between client and server.
- Uses SSL/TLS for encryption.
- Protects against eavesdropping and tampering.
- Essential for sensitive data like logins and payments.
Memory trick: Secure web means H-T-T-P-S, always protect your P-I-I-S (Personally Identifiable Information Securely).